Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status Request extensions.

Published: 2016-09-26

CVSS: 7.8

CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Download CVE-2016-6304 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-353-cve-2022-2588/

https://connollyfinan.ie/poc-569-cve-2024-48910/

https://connollyfinan.ie/poc-168-cve-2024-21216/

https://connollyfinan.ie/poc-160-cve-2025-59719/